Dashboards & Visualizations

Edit Search String Not Available On Dashboard

donaldwayne1975
Path Finder

Edit Search String Not Available On Dashboard. I am trying to add a time selector input to my dashboard following the steps from here:http://docs.splunk.com/Documentation/Splunk/6.2.3/SearchTutorial/Createnewdashboard. I have attempted adjusting the permissions and restarting the services and results remain the same. Thank you in advance for your time.

alt text

Tags (1)
0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

It looks as if you've added a report to that panel, not an inline search. To edit the search string in that report, hit the left button of those three circled, click the report name, and click open in search. Make your changes, test them, and hit save in the top right corner above the search bar.

Note: This will change the report, so changes will propagate to everyone and everything using that report.

View solution in original post

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

It looks as if you've added a report to that panel, not an inline search. To edit the search string in that report, hit the left button of those three circled, click the report name, and click open in search. Make your changes, test them, and hit save in the top right corner above the search bar.

Note: This will change the report, so changes will propagate to everyone and everything using that report.

0 Karma

donaldwayne1975
Path Finder

Martin,

Thank you for the information. Yes, I used reports for the dashboard. I have changed the way I had the panels to inline search. All is functioning as I wanted.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...